Show filters
42 Total Results
Displaying 21-30 of 42
Sort by:
Attacker Value
Unknown

CVE-2020-19767

Disclosure Date: September 07, 2021 (last updated November 29, 2024)
A lack of target address verification in the destroycontract() function of 0xRACER 1.0 allows attackers to steal tokens from victim users via a crafted script.
Attacker Value
Unknown

CVE-2018-21268

Disclosure Date: June 25, 2020 (last updated February 21, 2025)
The traceroute (aka node-traceroute) package through 1.0.0 for Node.js allows remote command injection via the host parameter. This occurs because the Child.exec() method, which is considered to be not entirely safe, is used. In particular, an OS command can be placed after a newline character.
Attacker Value
Unknown

CVE-2019-18670

Disclosure Date: May 10, 2019 (last updated November 27, 2024)
In the Quick Access Service (QAAdminAgent.exe) in Acer Quick Access V2.01.3000 through 2.01.3027 and V3.00.3000 through V3.00.3008, a REGULAR user can load an arbitrary unsigned DLL into the signed service's process, which is running as NT AUTHORITY\SYSTEM. This is a DLL Hijacking vulnerability (including search order hijacking, which searches for the missing DLL in the PATH environment variable), which is caused by an uncontrolled search path element for nvapi.dll, atiadlxx.dll, or atiadlxy.dll.
Attacker Value
Unknown

CVE-2016-5648

Disclosure Date: June 08, 2017 (last updated November 26, 2024)
Acer Portal app before 3.9.4.2000 for Android does not properly validate SSL certificates, which allows remote attackers to perform a Man-in-the-middle attack via a crafted SSL certificate.
0
Attacker Value
Unknown

CVE-2017-9430

Disclosure Date: June 05, 2017 (last updated November 26, 2024)
Stack-based buffer overflow in dnstracer through 1.9 allows attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a command line with a long name argument that is mishandled in a strcpy call for argv[0]. An example threat model is a web application that launches dnstracer with an untrusted name string.
0
Attacker Value
Unknown

CVE-2012-3290

Disclosure Date: June 07, 2012 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in Google Chrome before 20.0.1132.22 on the Acer AC700; Samsung Series 5, 5 550, and Chromebox 3; and Cr-48 Chromebook platforms have unknown impact and attack vectors.
0
Attacker Value
Unknown

CVE-2012-1418

Disclosure Date: February 29, 2012 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in Google Chrome before 17.0.963.60 on the Acer AC700, Samsung Series 5, and Cr-48 Chromebook platforms have unknown impact and attack vectors.
0
Attacker Value
Unknown

CVE-2012-0695

Disclosure Date: January 12, 2012 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in Google Chrome before 17.0.963.27 on the Acer AC700, Samsung Series 5, and Cr-48 Chromebook platforms have unknown impact and attack vectors.
0
Attacker Value
Unknown

CVE-2011-4719

Disclosure Date: December 09, 2011 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in Google Chrome before 16.0.912.63 on the Acer AC700, Samsung Series 5, and Cr-48 Chromebook platforms have unknown impact and attack vectors.
0
Attacker Value
Unknown

CVE-2011-4548

Disclosure Date: November 24, 2011 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in Google Chrome before 16.0.912.44 on the Acer AC700, Samsung Series 5, and Cr-48 Chromebook platforms have unknown impact and attack vectors.
0